In most organizations, DR is the quintessential complex, unfamiliar task. Disasters happen so rarely that recovery operations are the opposite of routine. What's more the myriad, interconnected data, application and other resources that must be recovered after a disaster make recovery an exceptionally difficult and error-prone effort. Even if you have never built a DR plan before, you can achieve great results. Just follow the DR Template that Janco has created and you will have a functioning plan before you know it.
All Business Continuity / Disaster Recovery plans need to encompass how employees will communicate, where they will go and how they will keep doing their jobs. The details can vary greatly, depending on the size and scope of a company and the way it does business. For some businesses, issues such as supply chain logistics are most crucial and are the focus on the plan. For others, information technology may play a more pivotal role, and the Business Continuity / Disaster Recovery plan may have more of a focus on systems recovery.
But the critical point is that neither element can be ignored, and physical, IT and human resources plans cannot be developed in isolation from each other. (In this regard, Business Continuity / Disaster Recovery has much in common with security convergence.) At its heart, Business Continuity / Disaster Recovery is about constant communication.
Janco's Disaster Recovery Plan (DRP) is that tool which can be used as a Disaster Planning template for any size of enterprise. The Template and supporting material have been updated to be Sarbanes-Oxley and HIPAA compliant. The template comes as both a Word document and a static fully indexed PDF document. The DRP/BCP Template includes:
Disaster Recovery Plan and Business Continuity Template (WORD and PDF)
Business and IT Impact Analysis Questionnaire
Work Plan
Disaster Recovery / Business Continuity Audit Program
Pandemic Planning Checklist
Incident Communication Plan and Policy
Preparation for Disaster Recovery / Business Continuity in light of SOX has two primary parts. The first is putting systems in place to completely protect all financial and other data required to meet the reporting regulations and to archive the data to meet future requests for clarification of those reports. The second is to clearly and expressly document all these procedures so that in the event of a SOX audit, the auditors clearly see that the DRP exists and will appropriately protect the data.
The Disaster Recovery / Business Continuity and Security Manual Template bundle comes in three versions - Standard, Premium, and Gold.
Disaster Recovery Business Continuity & Security Manual Templates Standard
Disaster Recovery Business Continuity Template (WORD)
Disaster Recovery Business Continuity Audit Program - Compliant with ISO 27031 and ISO 22301
Disaster Recovery Manager Job Description
Manager Disaster Recovery & Business Continuity Job Description
Application Inventory and Business Impact Analysis Questionnaire
Incident Communication Plan and Policy with BEST PRACTICES for
News Conferences
Media Relations
Social Network Checklist
Included with the template are Electronic Forms which have been designed to lower the cost of maintenance of the plan. Electonic Forms that can be emailed, completed via a computer or tablet, and stored electronically including:
LAN Inventory
Location Contact Numbers
Off-Site Inventory
Personnel Locations
Plan Distribution
Remote Location Contact Information
Team Call List
Vendor Contact Information
Security Manual Template (Word)
HIPAA Audit Program
ISO 27000 Security Audit - Compliant with ISO 22301 & 27031
Business and IT Impact Questionnaire
Threat and Vulnerability Assessment Tool
Sarbanes-Oxley Section 404 Checklist
Electronic forms that can be Emailed, completed via a computer or tablet, and stored electronically including:
Blog Policy Compliance
Company Asset Employee Control Log
Email - Employee Acknowledgment
Employee Termination Checklist
Internet Access Request
Internet Use Approval
Internet & Electronic Communication - Employee Acknowledgment
Mobile Device Access and Use Agreement
Employee Security Acknowledgement Release
Preliminary Security Audit Checklist
Security Access Application
Security Audit Report
Security Violation Reporting
Sensitive Information Policy Compliance Agreement
Disaster Recovery Business Continuity & Security Manual Templates Premium
Disaster Recovery Business Continuity Template (WORD)
Security Manual Template (Word)
25 Full Job Descriptions
Chief Information Officer (CIO); Chief Compliance Officer (CCO); Chief Security Officer (CSO);VP Strategy and Architecture; Director e-Commerce; Database Administrator; Data Security Administrator; Manager Data Security; Manager Database; Manager Disaster Recovery; Manager Disaster Recovery and Business Continuity; Pandemic Coordinator; Manager Facilities and Equipment; Manager Media Library Support; Manager Network and Computing Services; Manager Network Services; Manager Site Management; Manager Training and Documentation; Manager Voice and Data Communication; Manager Wireless Systems;Capacity Planning Supervisor; Disaster Recovery Coordinator; Disaster Recovery - Special Projects Supervisor; Network Security Analyst; System Administrator - Unix; System Administrator - Windows
Disaster Recovery Business Continuity & Security Manual Templates Gold
Disaster Recovery Business Continuity Template (WORD)
Security Manual Template (Word)
243 Full Job Descriptions which includes all of the job descriptions in the premium edition
Standard Edition Security Manual Template
Security Manual Template in MS Word Format
Business and IT Impact Questionnaire MS Word Format
Threat and Vulnerability Assessment Form PDF and MS Excel Format
HIPAA Audit Program MS Word Format
Sarbanes Oxley Section 404 Checklist MS Word Format
Security Audit Program - fully editable
Comes in MS EXCEL and PDF formats
Meets ISO 27001, 27002, Sarbanes-Oxley, PCI-DSS and HIPAA requirements
Over 400 unique tasks divided into 11 areas of audit focus which are the divided into 38 separate task groupings
Electronic forms that can be Emailed, completed via a computer or tablet, and stored electronically including:
Blog Policy Compliance
Company Asset Employee Control Log
Email - Employee Acknowledgment
Employee Termination Checklist
Internet Access Request
Internet Use Approval
Internet & Electronic Communication - Employee Acknowledgment
Mobile Device Access and Use Agreement
Employee Security Acknowledgement Release
Preliminary Security Audit Checklist
Security Access Application
Security Audit Report
Security Violation Reporting
Sensitive Information Policy Compliance Agreement
Premium Edition Security Manual Template
Security Manual Template in MS Word Format
Business and IT Impact Questionnaire MS Word Format
Threat and Vulnerability Assessment Form PDF and MS Excel Format
HIPAA Audit Program MS Word Format
Sarbanes Oxley Section 404 Checklist MS Word Format
Security Audit Program - fully editable
Comes in MS EXCEL and PDF formats
Meets ISO 27001, 27002, Sarbanes-Oxley, PCI-DSS and HIPAA requirements
Over 400 unique tasks divided into 11 areas of audit focus which are the divided into 38 separate task groupings
Electronic forms that can be Emailed, completed via a computer or tablet, and stored electronically including:
Blog Policy Compliance
Company Asset Employee Control Log
Email - Employee Acknowledgment
Employee Termination Checklist
Internet Access Request
Internet Use Approval
Internet & Electronic Communication - Employee Acknowledgment
Mobile Device Access and Use Agreement
Employee Security Acknowledgement Release
Preliminary Security Audit Checklist
Security Access Application
Security Audit Report
Security Violation Reporting
Sensitive Information Policy Compliance Agreement
Security Job Descriptions MS Word Format
Chief Security Officer (CSO)
Chief Compliance Officer (CCO)
VP Strategy and Architecture
Director e-Commerce
Database Administrator
Data Security Administrator
Manager Data Security
Manager Facilities and Equipment
Manager Network and Computing Services
Manager Network Services
Manager Training and Documentation
Manager Voice and Data Communication
Manager Wireless Systems
Network Security Analyst
System Administrator - Unix
System Administrator - Windows
Gold Edition Security Manual Template
Security Manual Template in MS Word Format
Business and IT Impact Questionnaire MS Word Format
Threat and Vulnerability Assessment Form PDF and MS Excel Format
HIPAA Audit Program MS Word Format
Sarbanes Oxley Section 404 Checklist MS Word Format
Security Audit Program - fully editable
Comes in MS EXCEL and PDF formats
Meets ISO 27001, 27002, Sarbanes-Oxley, PCI-DSS and HIPAA requirements
Over 400 unique tasks divided into 11 areas of audit focus which are the divided into 38 separate task groupings
Electronic forms that can be Emailed, completed via a computer or tablet, and stored electronically including:
Blog Policy Compliance
Company Asset Employee Control Log
Email - Employee Acknowledgment
Employee Termination Checklist
Internet Access Request
Internet Use Approval
Internet & Electronic Communication - Employee Acknowledgment
Mobile Device Access and Use Agreement
Employee Security Acknowledgement Release
Preliminary Security Audit Checklist
Security Access Application
Security Audit Report
Security Violation Reporting
Sensitive Information Policy Compliance Agreement
243 Job Descriptions from the Internet and IT Job Descriptions HandiGuide in MS Word Format including all of the job descriptions in the Premium Edition.
Included in the Disaster Recovery Business Continuity Template are:
Backup & Backup Retention Policy
Disaster Recovery Audit Program
Compliance with the ISO 27000 Series Standards (formerly ISO 17799 now ISO 27001 & ISO 27002), Sarbanes-Oxley, PCI-DSS, and HIPAA
Web Site Disaster Recovery Planning Form
Project Status Report Form
Personnel Location Report
Department Disaster Recovery Activation Workbook
Quick Reference Guide
Team Alert List (Form)
DRP Team Responsibilities
DRP Team Checklist
Critical Function(s) Definition
Normal Business Hour Response Procedures
After Hours Response Procedures
DRP Location(s) Definition
DRP Recovery Procedures
Notification Procedures
Notification Call List (Form)
Updated Business and IT Impact Analysis Questionnaire
Desktop Workstations (Off site including at home users)
Laptops
PDA’s and Smartphones
Recovery Strategy
Approach
Escalation Plans
Decision Points
Disaster Recovery Organization
Recovery Team Organization Chart
Disaster Recovery Team
Recovery Team Responsibilities
Disaster Recovery Emergency Procedures
General
Recovery Management
Damage Assessment and Salvage
Physical Security
Administration
Hardware Installation
Systems, Applications & Network Software
Communications
Operations
Plan Administration
Disaster Recovery Manager
Distribution of the Disaster Recovery Plan
Maintenance of the Business Impact Analysis
Training of the Disaster Recovery Team
Testing of the Disaster Recovery Plan
Evaluation of the Disaster Recovery Plan Tests
Maintenance of the Disaster Recovery Plan
Appendix and Forms
Included with the template are Electronic Forms which have been designed to lower the cost of maintenance of the plan. Electonic Forms that can be emailed, completed via a computer or tablet, and stored electronically including:
LAN Inventory
Location Contact Numbers
Off-Site Inventory
Personnel Locations
Plan Distribution
Remote Location Contact Information
Team Call List
Vendor Contact Information
Other Appendix Items are:
People Interviewed
Preventative Measures
Sample Application Systems Impact Statement
JOB Descriptions
Disaster Recovery Manager
Manager Disaster Recovery and Business
Continuity
Pandemic Coordinator
Application Inventory and Business Impact Analysis Questionnaire
Key Customer Notification List
Resources Required for Business Continuity
Critical Resources to Be Retrieved
Business Continuity Off-Site Materials
Work Plan
Audit Disaster Recovery Plan Process
Vendor Disaster Recovery Planning Questionnaire
Departmental DRP and BCP Activation Workbook
Web Site Disaster Recovery Planning Form
General Distribution Information
Business Pandemic Planning Checklist
Disaster Recovery Business Continuity Template is ISO 22301 & 27031 compliant
In order to be compliant with ISO 22301 & 27031 there are a number of elements that that are required and this template meets all of those requirements.
Staffing with appropriate skills, knowledge, and execution ability
Organization Chart (Section 5)
Plan Distribution (Appendix)
DRP Management Job Descriptions (Appendix)
Disaster Recovery Team List (Appendix)
Key Customer Contact List (Appendix)
Personnel Location List (Appendix)
Detail Job Descriptions for 15 key team members (Premium Edition of the template)
Facilities for both the existing and recovery operation
Operational Facilities (Section 3 and Appendix)
Recovery Facilities (Appendix – Sample Contract)
Off-Inventory (Appendix)
Technology definition
Hardware – Hardware Inventory (Section 3 and Appendix)
Network – Network Inventory (Section 3 and Appendix)
Software – Software Inventory (Section 3 and Appendix)
Resources required for continuity process (Appendix)
Business Continuity off-site materials (Appendix)
Critical Resources to be retrieved (Appendix)
Data Identification
Application Inventory and Business Impact Questionnaire (Appendix)
Application data (Appendix)
Voice data (Appendix)
Other (Appendix)
Processes
DRP and Activation Workbook (Appendix)
General Distribution Materials (Appendix)
Web Site Disaster Planning Form (Appendix)
Work Plan (Appendix)
Incident Communication Plan (Appendix)
Social Networking checklist (Appendix)
Pandemic Checklist (Appendix)
Preventative Measures (Appendix)
Audit Plan Process (Appendix)
Suppliers
Vendor and Supplier Disaster Recovery Questionnaire (Appendix)
Disaster Recovery Sample Contract (Appendix)
DRP BCP Template General Description
The DRP template is over 200 pages and includes everything needed to customize the Disaster Recovery Plan to fit your specific requirement. The electronic document includes proven written text and examples for the following major sections of a disaster recovery plan:
Plan Introduction
Business Impact Analysis - including a sample impact matrix
DRP Organization Responsibilities pre and post disaster - DRP / BCP checklist
Backup Strategy for Data Centers, Departmental File Servers, Wireless Network servers, Data at Outsourced Sites, Desktops (In office and "at home"), Laptops and PDA's.
Recovery Strategy including approach, escalation plan process and decision points.
Disaster Recovery Procedures in a check list format
Plan Administration Process
Technical Appendix including definition of necessary phone numbers and contact points
Job Descriptions
Disaster Recovery Manager
Manager Disaster Recovery and Business Continuity
Pandemic Coordinator
Work Plan to modify and implement the template. Included is a list of deliverables for each task. (Risk Assessment and Vulnerability Assessment)
There is a extensive section that shows how a full test of the DRP can be conducted. It includes
Disaster Recovery Manager Responsibilities
Distribution of the Disaster Recovery Plan
Maintenance of the Business Impact Analysis
Training of the Disaster Recovery Team
Testing of the Disaster Recovery Plan
Evaluation of the Disaster Recovery Plan Tests
Maintenance of the Disaster Recovery Plan
Click on the link below to get the DRP/BC sample pages now and make it part of your disaster recovery toolkit.
Backup Matrix - Sample from Template
Testimonials
Testimonial - Dave Baker - City of Hamilton -I have found the DRP template invaluable!
Testimonial - Bob Rifenbury -MCSE/CCNA Launch Testing Lab -The DRP Template saved me about 6 months of work!
Testimonial - Kelly Keeler - Martin's Point Health Care -I have received and I began using the template immediately. IT IS GREAT! Made this process a snap for me. Cut my documentation time down from. weeks to hours! This document has made, what began to be an overwhelming process turn into a snap!
Testimonial - Juan Stamos - Mexico City Corporation -We had a DRP in place, but needed a more user friendly structure. The Disaster Recovery Template (Gold edition) has that structure. It was very easy to quickly move our DRP into Janco's DRP Template -- a real added value.